Vulnerabilities > Qsan > Storage Manager > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-07-07 | CVE-2021-32506 | Absolute Path Traversal vulnerability in Qsan Storage Manager Absolute Path Traversal vulnerability in GetImage in QSAN Storage Manager allows remote authenticated attackers download arbitrary files via the Url path parameter. | 4.0 |
2021-07-07 | CVE-2021-32507 | Path Traversal vulnerability in Qsan Storage Manager Absolute Path Traversal vulnerability in FileDownload in QSAN Storage Manager allows remote authenticated attackers download arbitrary files via the Url path parameter. | 4.0 |
2021-07-07 | CVE-2021-32508 | Link Following vulnerability in Qsan Storage Manager Absolute Path Traversal vulnerability in FileStreaming in QSAN Storage Manager allows remote authenticated attackers access arbitrary files by injecting the Symbolic Link following the Url path parameter. | 4.0 |
2021-07-07 | CVE-2021-32509 | Link Following vulnerability in Qsan Storage Manager Absolute Path Traversal vulnerability in FileviewDoc in QSAN Storage Manager allows remote authenticated attackers access arbitrary files by injecting the Symbolic Link following the Url path parameter. | 4.0 |
2021-07-07 | CVE-2021-32510 | Information Exposure Through Directory Listing vulnerability in Qsan Storage Manager QSAN Storage Manager through directory listing vulnerability in antivirus function allows remote authenticated attackers to list arbitrary directories by injecting file path parameter. | 4.0 |
2021-07-07 | CVE-2021-32511 | Information Exposure Through Directory Listing vulnerability in Qsan Storage Manager QSAN Storage Manager through directory listing vulnerability in ViewBroserList allows remote authenticated attackers to list arbitrary directories via the file path parameter. | 4.0 |
2021-07-07 | CVE-2021-32514 | Unspecified vulnerability in Qsan Storage Manager Improper access control vulnerability in FirmwareUpgrade in QSAN Storage Manager allows remote attackers to reboot and discontinue the device. | 5.0 |
2021-07-07 | CVE-2021-32515 | Information Exposure Through Directory Listing vulnerability in Qsan Storage Manager Directory listing vulnerability in share_link in QSAN Storage Manager allows attackers to list arbitrary directories and further access credential information. | 5.0 |
2021-07-07 | CVE-2021-32516 | Path Traversal vulnerability in Qsan Storage Manager Path traversal vulnerability in share_link in QSAN Storage Manager allows remote attackers to download arbitrary files. | 5.0 |
2021-07-07 | CVE-2021-32517 | Unspecified vulnerability in Qsan Storage Manager Improper access control vulnerability in share_link in QSAN Storage Manager allows remote attackers to download arbitrary files using particular parameter in download function. | 5.0 |